OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: Xoops All Version -Articles- Print.PHP (ID) Blind SQL Injection Exploit And PoC

andysirium.net
Date: Tue Mar 27 2007 - 19:02:29 CDT


The Articles module has been updated to v1.03, which contains some input sanitising and should negate this exploit.

Version 1.03 can be downloaded from http://support.sirium.net/modules/mydownloads/viewcat.php?cid=2